|
ABSTRACT
The Threads model for computing curriculum represents a natural evolution of contextualized computing education. As information security is one of the pervasive themes in IT curriculum, it is reasonable to design a security thread in a Thread-based curriculum. As computing security becomes more important in all sectors of society, so does the preparation of our students with knowledge and understanding of critical security concepts, methodologies, and techniques. Unfortunately, despite the deep and pervasive impact of security, undergraduate IT curricula and programs today often lack a cohesive model to deliver information assurance education to a wider audience, offering security courses beyond the limitation of a track, concentration, or a security minor. We want to infuse information security into our IT curriculum, and we found a good model for doing that. This paper introduces the Threads model for computing curricula originated from Georgia Tech's College of Computing, an innovative way to restructuring computing curriculum. We believe that a security Thread should be developed for any undergraduate IT program. We discuss the rationales, design, and implementation for an information security thread in IT programs as well as the challenges we have faced in designing such a thread.
REFERENCES
Note: OCR errors may be found in this Reference List extracted from the full text article. ACM has opted to expose the complete List rather than only correct and linked references.
| |
1
|
Schwartz, K. Security Tops List of Most Wanted, Most Lacking IT Skills, eWeek, 2008-2-27, www.midmarket.eweek.com.
|
 |
2
|
|
| |
3
|
ACM and IEEE Computer Society. Computing Curricula 2005. The Overview Report. ACM and IEEE Computer Society, 2005. (at http://www.acm.org/education/curric_vols/CC2005-March06Final.pdf )
|
| |
4
|
ACM Computing Curricula, Information Technology Volume. ACM, 2005. (at http://www.acm.org/education/curric_vols/IT_October_2005.pdf)
|
| |
5
|
Meyer, J. and Ray Land. Threshold Concepts and Troublesome Knowledge: Linkages to Ways of Thinking and Practising within the Disciplines. Occasional Report 4, ETL Project, Universities of Edinburgh, Coventry and Durham, May 2003.
|
| |
6
|
Furst, M. and Richard DeMillo, Creating Symphonic-Thinking Computer Science Graduates for an Increasingly Competitive Global Environment, White Paper, Georgia Institute of Technology, College of Computing, http://www.cc.gatech.edu/education/undergrad/bscs/threads_whitepaper.pdf.
|
| |
7
|
Threads Resources, College of Computing, Georgia Institute of Technology, www.cc.gatech.edu/education/undergrad/bscs, accessed on March 2, 2008.
|
| |
8
|
|
 |
9
|
Paul Mullins , Jim Wolfe , Michael Fry , Erik Wynters , William Calhoun , Robert Montante , William Oblitey, Panel on integrating security concepts into existing computer courses, Proceedings of the 33rd SIGCSE technical symposium on Computer science education, February 27-March 03, 2002, Cincinnati, Kentucky
[doi> 10.1145/563340.563480]
|
| |
10
|
Davidson, M. A. "Leading by Example: the case for IT Security in Academia", Educause Review, Jan/Feb. 2005.
|
| |
11
|
NSF Program Solicitation, CISE Pathways to Revitalized Undergraduate Computing Education (CPATH), NSF 06-608, http://www.nsf.gov/pubs/2006/nsf06608/nsf06608.htm.
|
| |
12
|
Wang, J. A., "Security Testing in Software Engineering Courses", Proceedings of Frontiers in Education Conference, Session F1C, IEEE Catalog Number 04CH37579C, ISBN: 0-7803-8553-5. October 2004.
|
| |
13
|
AAUW, Tech-Savvy: Educating Girls in the New Computer Age, American Association of University Women Education Foundation, New York, 2000.
|
| |
14
|
Margolis, J. and A. Fisher, Unlocking the Clubhouse: Women in Computing, MIT Press, Cambridge, MA, 2002.
|
 |
15
|
|
| |
16
|
NSTISSI-4011, National Training Standard for Information Systems Security (INFOSEC) Professionals, dated 20 June 1994. http://www.cnss.gov/instructions.html.
|
| |
17
|
CNSSI-4012, National Information Assurance Training Standard for Senior systems Managers, dated June 2004, http://www.cnss.gov/instructions.html.
|
| |
18
|
CNSSI-4013, National Information Assurance Training Standard for System Administrators (SA), dated March 2004. http://www.cnss.gov/instructions.html.
|
| |
19
|
CNSSI-4014, National Information Assurance Training Standard for Information Systems Security Officers, dated April 2004. http://www.cnss.gov/instructions.html.
|
| |
20
|
CNSSI-4016, National Information Assurance Training Standard for Risk Analysts, dated November 2005. http://www.cnss.gov/instructions.html.
|
| |
21
|
ABET, 2008-2009 Criteria for Accrediting Computing Programs - New Criteria, 2008. http://www.abet.org/.
|
| |
22
|
LeBlanc, R. Threads Assessment and ABET Accreditation, presented at the First Workshop of CPATH, Georgia Tech, Atlanta, January 24, 2008.
|
|